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AMENDMENTS TO THE CLAIMS: 

This listing of claims will replace all prior versions and listings of claims in the 
application. 

LISTING OF CLAIMS: 

1 . (Currently Amended) In a client-server-document repository system, a secure 
method for remote action by reference , comprising: 

sending, from the client to the server, user credentials to release pertaining to a document 
stored in the document repository , a delegation credential giving permission to the server to 
obtain the document and f ef-permitting the server to perform an action on the documen t on the 
user's behalf and the address of the document in the document repository ; 

verifying, at the server, the user's credentials and the delegation credential; 

if verified, sending, from the server to the document repository, server credentials, the 
delegation credential and the address of the document; 

verifying, at the document repository, the server's credentials and the delegation 
credential; 

if verified, sending providing the documen t from the document repository to the server; 

and 

performing the action on the documen t at the server . 

2. (Original) The method of claim 1, wherein the server comprises a printer. 

3. (Original) The method of claim 1, wherein the server comprises a multi- 
function device for printing, faxing and scanning. 

4. (Currently Amended) The method of claim 1, further comprising establishing 
a secure connection between the client and server prior to sending the user credentials, 
delegation credential and location address of the document. 
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5. (Currently Amended) The method of claim 1, wherein the document location 
address comprises a URL. 

6. (Original) The method of claim 1, wherein the delegation credential 
comprises a certificate signed by the client and including the delegator, delegatee, URL of the 
document to be fetched, URL of the server, access rights and constraints delegated to the server. 

7. (Original) The method of claim 1, wherein the client comprises a mobile 

device. 



8. (Original) The method of claim 7, wherein the mobile device comprises a 

PDA. 

9. (Original) The method of claim 7, wherein the mobile device comprises a cell 

phone. 

10. (Original) The method of claim 1, wherein the delegation credential includes 
a time limit, wherein upon expiration of the time limit, the server's permissions expire. 

1 1 . (Original) The method of claim 1 , further comprising: 

sending, from the client to the server, a delegation credential for authorizing payment for 
the action to be performed by the server; 

sending, from the server to a payment provider, server credentials and the payment 
delegation credential; 

verifying, at the payment provider, the server's credentials and the payment delegation 
credential, and if valid directing payment to the server. 
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12. (Original) The method of claim 1, wherein the delegation credential 
comprises a Satchel token. 

13. (Original) The method of claim 1, wherein the delegation credential 
comprises an SPKI certificate. 

14. (Original) The method of claim 1, wherein the server comprises a printer and 
the action comprises printing the document and wherein the verifying step comprises verifying if 
the client has rights on the printer and if not sending an error message to the client. 

15. (Original) The method of claim 14, further comprising verifying, at the 
printer, if sufficient media is available. 

16. (Original) The method of claim 15, further comprising, upon printing the 
document, sending the client a notice. 

17. (Original) The method of claim 3, wherein the delegation credential includes 
the client's access rights associated with the document and constraints on the server. 

18. (Original) The method of claim 17, wherein the client's access rights include 
printing, faxing, copying and fetching and wherein the server's constraints include a 
predetermined number of copies that may be made and a predetermined period of time in which 
actions on the document may be provided. 

19. (Currently Amended) In a client-server-document repository system, a secure 
method for remote action by reference , comprising: 
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sending, from the client to the server, user credentials to release a plurality of documents 
stored in the document repository and a plurality of delegation credentials, wherein each 
delegation credential includes permissions for the server to obtain the document and to perform 
an action on a document on the user's behalf and the address of the document; 
for each delegation credential, 

verifying, at the server, the user's credentials and the delegation credential; 
if verified, sending, from the server to the document repository, server 
credentials, the delegation credential and the address of the document; 

verifying, at the document repository, the server's credentials and the delegation 

credential; 

if verified, providin g sending the documen t from the document repository to the 

server; and 

performing the action on the documen t at the server . 



